RipperSec is a pro-Palestinian hacktivist group known since mid-2023 for DDoS attacks and website defacements.
Analyst brief
RipperSec is a pro-Palestinian, likely Malaysia-based hacktivist group active since June 2023, primarily targeting Israeli government and educational websites, along with organizations perceived to support Israel. Their main TTPs include DDoS attacks, data breaches, website defacements, and the use of a tool called MegaMedusa, relying heavily on community involvement over sophisticated infrastructure. Defenders should focus on monitoring Telegram channels for attack coordination, preparing for volumetric DDoS attacks against web applications, and watching for data leak indicators.
RipperSec
unknown
RipperSec is a pro-Palestinian, likely Malaysian hacktivist group created in June 2023, known for conducting DDoS attacks, data breaches, and defacements primarily targeting government and educational websites, as well as organizations perceived to support Israel. The group has claimed 196 DDoS attacks, with a significant portion directed at Israel, and utilizes a tool called MegaMedusa for their operations. RipperSec operates on Telegram, where it has amassed over 2,000 members, and collaborates with various like-minded hacktivist groups. Their attack strategy relies heavily on community involvement rather than sophisticated infrastructure.